Talend JobServer
This release provides security and execution stability improvements for Talend JobServer, including a Log4j vulnerability remediation.
Notable fixes
| Issue | Description |
|---|---|
| DPE-2367, DPE-2925 | Updated the embedded Log4j dependencies in Talend JobServer to v2.25.4 to address the CVE-2025-68161 and CVE-2026-34480 security vulnerabilities. |
| DPE-2347, DPE-2365 | Hardened Talend JobServer security by preventing unauthenticated JMX stop operations and improving the security of serialization and deserialization handling. |
| DPE-2604, DPE-2701 | Fixed Job start and deployment failures caused by insufficient synchronization between cleanup, upload, and deployment operations. |
| DPE-1733, DPE-2680 | Improved Job and Job execution state validation, including how Talend JobServer handles the configured maximum number of Jobs during cleanup. |
| DPE-2729 | Improved Java runtime selection during Job executions by respecting the minimum Java version provided with the artifacts before falling back to other detection strategies. |
| DPE-2560 | Fixed an issue where Talend JobServer may appear offline in Talend Administration Center when the monitoring port was enabled. |
For more details about these changes and other updates, see TPS-6024 patch notes.